Fortinet blocking traffic to access a website application, but no issue on network outside of fortinet. What policy or service should be allow to fix this ? Thanks in advance for the expert !
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Can you check the traffic logs to identify the policy name and the reason for blocking?We can then modify the policy/inspection profile accordingly.
These were captured in forward traffic log.
This shows the traffic is blocked by UTM, please double click on one of the entry to see the details, I expect to see the UTM component (mostly AV) blocking the traffic. We can disable that particular feature and then test.
Morning Suraj & Pratik.
Tested with all security profiles disabled, unfortunately the issue persist even nothing was blocked.
Seems like the host is waiting for a PING response to proceed
Created on 08-31-2023 02:06 AM Edited on 08-31-2023 02:14 AM
Hi all, I think this explain the situation
Hi preston55,
If you are using any security profiles on the policy you can validate the logs under logs section to validate if any of the attached security profile is blocking the traffic.
For single test user you can test by creating the test policy from source to destination and without any utm profiles attached, if without any security profiles it is working you can add one by one security profiles to confirm which one is blocking the traffic and once isolated you can further allow the traffic under that security profile.
Regard's,
Pratik
Hi Pratik, thanks for the advice. Let me give it a try, at least some progress to identify what causing the issue.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1641 | |
1069 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.